Record summary

CVE-2007-5849 has a selected CVSS score of 9.3; EIP currently links 1 catalogued exploit.

Description

Integer underflow in the asn1_get_string function in the SNMP back end (backend/snmp.c) for CUPS 1.2 through 1.3.4 allows remote attackers to execute arbitrary code via a crafted SNMP response that triggers a stack-based buffer overflow.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBCommon UNIX Printing System 1.2/1.3 SNMP - 'asn1_get_string()' Remote Buffer OverflowExploitDB exploitby wei_wangNot analyzed1 file
ExploitDB

PoC details

References

Showing 12 of 27